I was reading the what's new page for 2012 AD CS and I don't understand something I read:
"Administrators can configure certificate templates so that Windows 8, Windows 8.1 Preview, Windows Server 2012, and Windows Server 2012 R2 Preview to give higher priority to TPM-based KSPs for generating keys"
What is the advantage of doing this exactly? Is this useful if you have a high volume of keys being generated and you want TPM keys to have a higher priority?
I haven't worked with certificates\PKIs in a while so I think I am missing a fundamental concept here.